kbgsft/vuln-dext5editor

kbgsft/vuln-dext5editor

Releases0

CVE History

CVEPublishedCVSS v3CVSS v2
7.5 HIGH5 MEDIUM

handler/upload_handler.jsp in DEXT5 Editor through 3.5.1402961 allows an attacker to download arbitrary files via the savefilepath field.